ZeroHour

CVE-2022-4315

PoC
CVSS 3.1
6.5 medium
EPSS
<1%p55
Published
()
Modified
Description

An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 2.0 before 3.0.55, which sends custom request headers with every request on the authentication page.

Vendors
gitlab
Products
dynamic application security testing analyzer
Weakness
CWE-863
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.